Authentication Bypass in Universal Software's UKBS Platform
CVE-2026-7187

8.8HIGH

Key Information:

Status
Vendor
CVE Published:
28 July 2026

What is CVE-2026-7187?

A vulnerability present in Universal Software Inc.'s UKBS platform allows unauthorized access to essential functions due to inadequate access control measures. This lack of proper authentication protocols can lead to exploitation by malicious actors, enabling them to access functionality that should be restricted. As of the last update, the product is no longer supported by the vendor, which heightens the risks associated with this vulnerability.

Affected Version(s)

UKBS 0 <= 28072026

References

CVSS V3.1

Score:
8.8
Severity:
HIGH
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Adjacent Network
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
None
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

Credit

Muhammed Taha YILMAZ
.